๐บ๐ธ
TPI-Abuse
2026-09-17 08:57:45
(26 minutes ago)
(mod_security) mod_security (id:210492) triggered by 34.165.86.164 (164.86.165.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.165.86.164 (164.86.165.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 04:57:37.875501 2026] [security2:error] [pid 31239:tid 31239] [client 34.165.86.164:38542] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cookerwars.com"] [uri "/.git/config"] [unique_id "aqurgXnFXZvXlxG1OtAhzAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
sc user
2026-09-17 08:08:51
(1 hour ago)
Fail2Ban nginx: repeated suspicious HTTP requests consistent with automated probing, scanning or bad ...
show more
Fail2Ban nginx: repeated suspicious HTTP requests consistent with automated probing, scanning or bad bot behaviour. Technical log details and local server identifiers intentionally omitted for privacy.
show less
Bad Web Bot
Web App Attack
Port Scan
๐ฉ๐ช
sojan
2026-09-17 07:59:09
(1 hour ago)
34.165.86.164 - - [17/Sep/2026:09:59:08 +0200] "POST / HTTP/1.1" 405 31 "-" "Mozilla/5.0 (X11; Linux ...
show more
34.165.86.164 - - [17/Sep/2026:09:59:08 +0200] "POST / HTTP/1.1" 405 31 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.165.86.164 - - [17/Sep/2026:09:59:08 +0200] "POST / HTTP/1.1" 405 31 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
34.165.86.164 - - [17/Sep/2026:09:59:08 +0200] "POST / HTTP/1.1" 405 31 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-17 07:51:26
(1 hour ago)
(mod_security) mod_security (id:210492) triggered by 34.165.86.164 (164.86.165.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.165.86.164 (164.86.165.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Sep 17 03:51:21.850926 2026] [security2:error] [pid 7409:tid 7409] [client 34.165.86.164:50310] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cook-islands-boat-registration.com"] [uri "/.git/config"] [unique_id "aqub-b0edSYdt15h9nhRzAAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
CBJ
2026-09-17 02:21:25
(7 hours ago)
fail2ban: apache-filepath-recon
...
Web App Attack
๐ธ๐ช
vaia.cloud
2026-09-17 02:05:03
(7 hours ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-16 17:52:34
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.165.86.164 (164.86.165.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.165.86.164 (164.86.165.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 13:52:27.873355 2026] [security2:error] [pid 8043:tid 8043] [client 34.165.86.164:60796] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "clubfansite.com"] [uri "/.git/config"] [unique_id "aqrXW-GS-VbxjLfR02edKQAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฉ๐ช
big-cloud.nl
2026-09-16 17:34:25
(15 hours ago)
Try to access /.git/config
Web App Attack
๐ฌ๐ง
consul.to
2026-09-16 17:18:25
(16 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-16 17:13:27
(16 hours ago)
Excessive 404/403 errors
Brute-Force
๐บ๐ธ
abuse-opdc
2026-09-16 14:25:45
(18 hours ago)
Malicious HTTP requests matching injection/exploit signatures.
Web App Attack
Brute-Force
๐ฉ๐ช
netclix.gr
2026-09-16 14:18:09
(19 hours ago)
(mod_security) mod_security triggered on hostname [redacted] 34.165.86.164 (IL/Israel/164.86.165.34. ...
show more
(mod_security) mod_security triggered on hostname [redacted] 34.165.86.164 (IL/Israel/164.86.165.34.bc.googleusercontent.com): (CF_ENABLE)
show less
SQL Injection
๐จ๐ญ
Sonics
2026-09-16 13:39:55
(19 hours ago)
Automated scanner: .env/.git/phpinfo scan
Web App Attack
๐ณ๐ฑ
Site.eu
2026-09-16 11:35:11
(21 hours ago)
Excessive multi-domain requests
Brute-Force
๐ฎ๐น
paoloartone
2026-09-16 05:00:31
(1 day ago)
Reverse proxy TCO: 574 richieste malevole bloccate (scan/exploit/brute-force WordPress) il 15/09/202 ...
show more
Reverse proxy TCO: 574 richieste malevole bloccate (scan/exploit/brute-force WordPress) il 15/09/2026.
show less
Web App Attack
Hacking
Port Scan